Page MenuHomeDevCentral

Create restic users and generate S3 credentials
ClosedPublic

Authored by dereckson on Sat, Sep 5, 22:44.
Tags
None
Referenced Files
F49638589: D4206.diff
Sun, Sep 13, 13:01
F49638483: D4206.diff
Sun, Sep 13, 13:00
Unknown Object (File)
Sun, Sep 13, 07:50
Unknown Object (File)
Sun, Sep 13, 05:15
Unknown Object (File)
Sat, Sep 12, 19:47
Unknown Object (File)
Sat, Sep 12, 02:10
Unknown Object (File)
Sat, Sep 12, 01:50
Unknown Object (File)
Fri, Sep 11, 15:17
Subscribers
None

Details

Summary

We create the accounts per container and server:

  • for -amaris, every server
  • for -darak, WindRiver as experimental test
  • for -vakor, Complector

Those 13 accounts are separate OVH project users,
with separate credentials stored in Vault.

-amaris accounts are intended to be included in by-server Vault policy,
-vakor account can use a approle, as an unprivileged account can do this.

Diff Detail

Repository
rOPS Nasqueron Operations
Lint
Lint Passed
Unit
No Test Coverage
Branch
ovh-backups-restic-users
Build Status
Buildable 6881
Build 7169: arc lint + arc unit

Event Timeline

dereckson created this revision.

Rebased. Remove version to be idempotent.

Deployed and idempotent.

This revision is now accepted and ready to land.Sun, Sep 13, 23:20